Doublecup ClickFix — Campaign Analysis & Threat Activity

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
August 3, 2026
Last Seen
August 3, 2026

Doublecup ClickFix is a threat campaign tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.

Doublecup ClickFix is a threat campaign tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed August 3, 2026; most recent activity August 3, 2026.

Related Threat Clusters

  • DOUBLECUP Service Delivers Malware via Cached PNG Images

    The DOUBLECUP loader-as-a-service, identified by SOCRadar, employs ClickFix attacks to conceal malware within PNG images cached by browsers. This service, operational since June 2026, targets Windows and macOS systems,…

    4 articles · Updated August 4, 2026

Recent Intelligence Reports

  • New DOUBLECUP ClickFix service hides malware in browser cache images — Bleepingcomputer · August 3, 2026

Frequently asked questions

What is Doublecup ClickFix?

Doublecup ClickFix is a threat campaign tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.

Is Doublecup ClickFix still active?

The most recent intelligence report mentioning Doublecup ClickFix on ThreatCluster is dated August 3, 2026.

What is Doublecup ClickFix associated with?

Across ThreatCluster reporting, Doublecup ClickFix most frequently co-occurs with Malware, Phishing, Hubspot, NetSuite, Salesforce, among 12 tracked related entities.

What are the latest developments involving Doublecup ClickFix?

The most significant recent cluster is “DOUBLECUP Service Delivers Malware via Cached PNG Images” (4 articles · Updated August 4, 2026). Doublecup ClickFix appears across 1 threat cluster in total, listed above with sources.

How much reporting does ThreatCluster have on Doublecup ClickFix?

Doublecup ClickFix appears in 1 intelligence report mention across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.

CVSS v3.1 Breakdown